Comware

 View Only
last person joined: 3 days ago 

Expand all | Collapse all

Comware 7 radius ssh authenticate - security

This thread has been viewed 15 times
  • 1.  Comware 7 radius ssh authenticate - security

    Posted Sep 20, 2022 12:54 PM
    Hi,

    I've been testing use radius server to authenticate and authorize ssh users on HPE 5130 switch following HPE FlexNetwork 5130 EI Switch Series Security Configuration Guide. When I
    analyze the packets send between Radius server and NAS (HPE 5130) and I see the packets are sent with no cryptography, except the User-Password attribute. Is safe to do this? Is RadSec supported by HPE 5130?


  • 2.  RE: Comware 7 radius ssh authenticate - security
    Best Answer

    Posted Sep 30, 2022 09:16 AM
    What you are seeing is an industry standard. 'Safe' depends on the network the traffic traverses. For most organisations knowledge of the vlans and locations of a user isn't interesting. But for a public network this might be seen as user identifiable data and should be treated with care.